
Research
Two Malicious Rust Crates Impersonate Popular Logger to Steal Wallet Keys
Socket uncovers malicious Rust crates impersonating fast_log to steal Solana and Ethereum wallet keys from source code.
@betomorrow/expo-android-release-config
Advanced tools
Provide Android signing release of your Expo CNG app from file without using EAS.
Add this package to your dependencies and reference it in the plugins
section of your app.json
/app.config.js
/app.config.ts
:
{
"plugins": [
"@betomorrow/expo-android-release-config",
]
}
No extra configuration can be passed to the plugin at the moment.
Rerun npx expo prebuild --clean
for the plugin to apply.
Plugin expect a signing.properties
file within your Expo app root, whose keys are described in the example file.
Installing this package in a bare React Native project is pointless since you can put your own signing config and commit it.
Any package manager will do, adjust to your preferences.
npm install expo-android-release-config
FAQs
Unknown package
We found that @betomorrow/expo-android-release-config demonstrated a not healthy version release cadence and project activity because the last version was released a year ago. It has 0 open source maintainers collaborating on the project.
Did you know?
Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.
Research
Socket uncovers malicious Rust crates impersonating fast_log to steal Solana and Ethereum wallet keys from source code.
Research
A malicious package uses a QR code as steganography in an innovative technique.
Research
/Security News
Socket identified 80 fake candidates targeting engineering roles, including suspected North Korean operators, exposing the new reality of hiring as a security function.